-
Notifications
You must be signed in to change notification settings - Fork 5.9k
Issues: spring-projects/spring-security
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Inconsistent constructor declaration on bean with name '_reactiveMethodSecurityConfiguration'
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#16325
opened Dec 22, 2024 by
eugeniudedin
[build] Settings.gradle's logic to handle different buildFile name could result in phantom subproject
in: build
An issue in the build
status: waiting-for-feedback
We need additional information before we can continue
type: enhancement
A general enhancement
#16322
opened Dec 20, 2024 by
guesshe
OIDC Back-Channel Logout Support for Clustered Servers
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#16321
opened Dec 20, 2024 by
SnapPetal
relying-party-registration doesn't resolve placeholders in xml
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#16308
opened Dec 19, 2024 by
rvervaek
RoleHierarchy not automatically inject in overwritten MethodSecurityExpressionHandler bean
in: config
An issue in spring-security-config
status: waiting-for-feedback
We need additional information before we can continue
#16307
opened Dec 19, 2024 by
plumarr
Pass Http Request to OAuth2AuthorizationRequestResolver#authorizationRequestCustomizer
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#16306
opened Dec 19, 2024 by
ZIRAKrezovic
Favor Relative Redirects by Default
in: web
An issue in web modules (web, webmvc)
type: breaks-passivity
A change that breaks passivity with the previous release
type: enhancement
A general enhancement
Bean Conflict Between An issue we've not yet triaged
type: bug
A general bug
webSocketAuthorizationManagerPostProcessor
and objectPostProcessor
in Spring Security Configuration
status: waiting-for-triage
#16299
opened Dec 18, 2024 by
waileong
Add copyright modifier task
in: build
An issue in the build
type: enhancement
A general enhancement
#16298
opened Dec 17, 2024 by
jzheaux
UniqueSecurityAnnotationScanner should consider annotation on target class level as fallback
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#16295
opened Dec 17, 2024 by
quaff
Customize OneTimeToken expire time
in: web
An issue in web modules (web, webmvc)
type: enhancement
A general enhancement
#16291
opened Dec 16, 2024 by
R4N
Consider adding An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: enhancement
A general enhancement
PrincipalResolver
to ExchangeFilterFunctions
in: oauth2
Improve the BasicAuthenticationFilter to allow callbacks for both successful and failed authentication events.
in: web
An issue in web modules (web, webmvc)
status: feedback-provided
Feedback has been provided
type: enhancement
A general enhancement
#16281
opened Dec 13, 2024 by
pongdangx2
NimbusJwtEncoder should simplify constructing with javax.security Keys
status: ideal-for-contribution
An issue that we actively are looking for someone to help us with
type: enhancement
A general enhancement
#16267
opened Dec 12, 2024 by
jzheaux
Request for exception approval for CVE-2024-38819 [Spring Framework Path Traversal Vulnerability
status: waiting-for-feedback
We need additional information before we can continue
type: bug
A general bug
#16265
opened Dec 12, 2024 by
AshishJogiAcc
Automatically apply Customizer Beans to the Security DSL
in: config
An issue in spring-security-config
type: enhancement
A general enhancement
Support refreshing OIDC ID Token
status: waiting-for-triage
An issue we've not yet triaged
type: enhancement
A general enhancement
#16253
opened Dec 10, 2024 by
filiphr
Remove Deprecated Usages of RemoteJWKSet
in: oauth2
An issue in OAuth2 modules (oauth2-core, oauth2-client, oauth2-resource-server, oauth2-jose)
type: enhancement
A general enhancement
#16251
opened Dec 9, 2024 by
jzheaux
Add @AuthorizeRequestMapping annotation
in: web
An issue in web modules (web, webmvc)
type: enhancement
A general enhancement
Add "Best Match" based Web Authorization Rules
in: web
An issue in web modules (web, webmvc)
type: enhancement
A general enhancement
acl - Unable to obtain the class id type - column name class_id_type was not found
status: waiting-for-triage
An issue we've not yet triaged
type: bug
A general bug
#16230
opened Dec 7, 2024 by
zemirco
Sample Code in Documentation Should Link to a Complete Sample
in: docs
An issue in Documentation or samples
type: enhancement
A general enhancement
Previous Next
ProTip!
Type g i on any issue or pull request to go back to the issue listing page.